MYK-IT Posted July 3, 2019 Posted July 3, 2019 Hi, Like most (all) schools with have a myriad of various policies, AUPs etc. covering students, staff & visitors etc. for all aspects of the school - In for this instance, the use of ICT, Internet etc. However, we, like other schools, have external groups / organisations that make use of our premises through lettings, and as this has grown and expanded over the years so has the requirements beyond the needs for just for a room, sports hall or field. Therefore, this is one area whereby I feel like we require additional 'wording' (or a specific AUP) in relation to these Lettings, to protect us the school as much as the organisations themselves, that may use our ICT/Wi-Fi provision. Beyond the usual, internet is subject to being logged, monitored and filtered etc, and that the norm is for the following to be available: HTTP/HTTPS : Ports 80:443, Email: Ports 25,587,465,110 etc (anything else is either restricted, unsupported or not-guaranteed to work) I am thinking more along the lines of including items like: - Availability of Wi-Fi is not guaranteed, subject to bandwidth restrictions / quotas (as much as to protect the performance for the rest of the school) - Not to host, or operate (il/legal) services on-site that may detriment the school's internet, reputation, public IP address etc. (to ensure our Public IPs don't get blacklisted) - School not responsible for any loss of (business) services, data and / or finances that may occur due to the unavailability / incompatibility of Wi-Fi etc - The School will not be responsible for ongoing IT support beyond the initial assistance in supplying credentials / connection process etc. The use of School Wi-Fi would not be a (specific) chargeable service, more along the lines that if the organisation who has booked a letting, have asked for internet connectivity etc. we'll offer it (subject to these AUPs) - e.g. no contract, SLA etc. Has anyone got similar AUPs in place, or additional ideas that you could kindly share? Thanks, 1
FN-GM Posted July 4, 2019 Posted July 4, 2019 I wouldn't allow SMTP 25. You're at risk of your IP being blocked if someone is sending email spam from their device. We didn't have a policy as such. Just a small agreement in the captive portal when they connect. Similar to what you say. Not guaranteed etc.
PlantHead Posted July 4, 2019 Posted July 4, 2019 We have a form with very similar points to you. We also include it into the Guest logon portal when they first logon to our network. Additionally we have: Must not upload or transmit invalid data, viruses, worms, harmful code, malware or other software agents Must not seek to circumvent access restrictions or decrypt transmissions; or otherwise attempt to compromise the security of the school The School will not provide data cabling, paper, AV cabling or any additional peripherals or kit beyond that which is already in use by the school.
Renfield-64 Posted July 18, 2019 Posted July 18, 2019 Our school has a separate wifi network for BYOD (not physically separate). Anyone bringing their own device to school can only access this.
MatthewL Posted July 18, 2019 Posted July 18, 2019 I would enable UDP 500/4500 (will need to check as not sure off the top of my head) for VPN traffic so they can VPN back to the office if needed.
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now